How to remove nacl64.exe
nacl64.exe
The module nacl64.exe has been detected as PUP.MailRu
File Details
| Product Name: | Atom |
| Company Name: | The Atom Authors |
| MD5: | 392cd3ae78788a90d7e18695679e8346 |
| Size: | 3 MB |
| First Published: | 2020-11-07 06:27:49 (5 years ago) |
| Latest Published: | 2021-01-10 15:21:22 (4 years ago) |
| Status: | PUP.MailRu (on last analysis) | |
| Analysis Date: | 2021-01-10 15:21:22 (4 years ago) |
Overview
| Signed By: | LLC Mail.Ru |
| Status: | Valid |
Common Places:
| %localappdata%\mail.ru\atom\application |
| %localappdata%\mail.ru\atom\application |
| %localappdata%\mail.ru\atom\application |
| %localappdata%\mail.ru\atom\application |
| %localappdata%\mail.ru\atom\application |
| %localappdata%\mail.ru\atom\application |
| %sysdrive%\adwcleaner\quarantine\gxix4a2dre\atom\application |
| %localappdata%\mail.ru\atom\application |
| %localappdata%\mail.ru\atom\application |
| %localappdata%\mail.ru\atom\application |
Geography:
| 75.0% | ||
| 12.5% | ||
| 6.3% | ||
| 6.3% |
OS Version:
| Windows 10 | 76.5% | |
| Windows 7 | 23.5% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x0018d490 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 1833472 | f5a36bafa96f1f73ee1ed240156aae37 |
| .rdata | 1392128 | fabf362681ce284d6dd1aecf1293d996 |
| .data | 15872 | 3f828c3323446f835b42357195259d14 |
| .pdata | 74752 | 342a5eee36b56df9c569271a2b0eab4f |
| .00cfg | 512 | bc836bc462d4e0aba5692750f1453fb2 |
| .retplne | 512 | bcdee87f658a7bf4080188f07db97ca9 |
| .tls | 512 | 38f48475e72b6644c1d22f28659dc61c |
| CPADinfo | 512 | 60d3ea61d541c9be2e845d2787fb9574 |
| .rsrc | 61952 | bef807377d5c982c1100e236cb12a9df |
| .reloc | 10752 | 78148a777512d158f518e546ff436535 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for nacl64.exe